Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

That's not a panacea. OpenSSL was completely open source, and it took, what, 2-3 years for Heartbleed to be discovered and rectified? And it's a major building block of the internet.

For open source to help, people have to actually review the code.



Nothing is a panacea. FLOSS is just the right direction. At least you can fix the bugs with it without waiting for vendors, sometimes forever.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: